sezzle.com

.com toplist crawl

First seen 2026-04-11 · Last seen 2026-05-18 · ok HTTP/1.1 200 1577 ms crawled 2026-05-18

US · 18.239.18.80 · AS16509 Amazon.com, Inc.

Reputation 100/100

Classifying

HTML metadata

Title
Buy Now Pay Later | Pay in 4
Description
Sezzle allows you to buy now and pay later! Shop now, get what you need, and pay later in 4 interest-free installment payments over six weeks. Learn more!
Language
en
Generator
Gatsby 5.13.3
Canonical
https://sezzle.com/

Open Graph

url
https://sezzle.com/
title
Sezzle: Buy Now, Pay Later. 0% Interest.
locale
en_US
site name
Sezzle
description
Buy from your favorite stores today, and split up the cost into four interest-free payments.

Technology

CDN
Amazon CloudFront
CMS
Gatsby

Third-party hosts loaded (3)

  • images.ctfassets.net×47
  • dev.visualwebsiteoptimizer.com×1
  • widget.trustpilot.com×1

Social

Registration

Registrar
Amazon Registrar, Inc.
Created
2011-02-27
Expires
2027-02-27 283 days left
Updated
2026-05-15
Name servers
  • ns-1112.awsdns-11.org
  • ns-1739.awsdns-25.co.uk
  • ns-377.awsdns-47.com
  • ns-837.awsdns-40.net

DNS records live

NS
  • ns-1112.awsdns-11.org
  • ns-1739.awsdns-25.co.uk
  • ns-377.awsdns-47.com
  • ns-837.awsdns-40.net
MX
  • 1 aspmx.l.google.com
  • 10 aspmx2.googlemail.com
  • 10 aspmx3.googlemail.com
  • 5 alt1.aspmx.l.google.com
  • 5 alt2.aspmx.l.google.com
TXT
Show 20 TXT records
  • gu1knlmqwf
  • vitally-domain-verification=970c715c-95b6-48c9-aec0-484b0b9b61a9
  • anthropic-domain-verification-fe1bzp=RbvlkeCYoL2nhEdH05tIOavH0
  • apple-domain-verification=kEDkG4SgPnJvaexW
  • google-site-verification=j06xgSToS3n0LvBFP_hm07126LMt3jUud5nO3VoPYnM
  • 1password-site-verification=F53HOOM2YZEFXO74AEWZOYLWVU
  • docker-verification=910b8551-767f-4fd1-bed1-062852a4766a
  • lovable_verification=117ewnNmU9o0qoOJ8JxQ
  • stripe-verification=FDBF321A148EC602285829492142D2278EAB7C34E8AC05D4F30CDD22C7A42473
  • google-site-verification=o9s9VfnFtIpXssyT1rt5tKXd2OAb8NVZKpPjPm7IMPg
  • google-site-verification=OjjeEjyjqCKGY_XxW55LVTBihOjW3Vp8Ypy8LTPiBms
  • atlassian-sending-domain-verification=8fd931f9-5903-4fe7-90cf-c151f5d822b9
  • jamf-site-verification=fFEuP0aVvlKJNlCTKrESHA
  • openai-domain-verification=dv-4F8dvvj0run3wlRYOCuvZHsw
  • MS=ms68581927
  • slack-domain-verification=RSZI5nX5ohixTaFfofBLhV1rj07QTU34c6cWsM6E
  • apple-domain-verification=TWT_EnANPa_U6Oe5zy-5m3ii2BgV53QNHGGvaIpFmiY
  • OSSRH-60254
  • google-site-verification=Oh1DXEYwJ9obeGH29RPNnNHhclL8rhBEZi72Jz37DMo
  • 373AE85F93

Email authentication strong

SPF
v=spf1 a ip4:208.86.168.7 ip4:135.84.68.123 ip4:206.152.14.54 ip4:149.72.117.5 ip4:149.72.205.89 ip4:149.72.217.22 include:_spf.google.com include:amazonses.com include:cust-spf.exacttarget.com include:emsd1.com include:sendgrid.net ~all
softfail (~all)
DMARC
v=DMARC1; p=reject; pct=100; rua=mailto:dmarc@sezzle.com; ruf=mailto:dmarc@sezzle.com; fo=s;
policy: reject (enforced)
DKIM
Show 5 DKIM selectors
  • google: v=DKIM1; k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQCG27LBPo2f16+0d5Ljp9MK8mKvZTMXF9ScnSGlkxXvBRtGgMAcPjfOwgYm7bZhAUUGuRtrOOVb8wuwDqKNdP…
  • k1: k=rsa; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDbNrX2cY/GUKIFx2G/1I00ftdAj713WP9AQ1xir85i89sA2guU0ta4UX1Xzm06XIU6iBP41VwmPwBGRNofhBVR+e6WHUo…
  • s1: k=rsa; t=s; p=MIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEA0H1ZUoC1qoYpbjMxl4nfHCttwg+jFDgst/k9e5mgsAG+T18nUMG+LBRq+x0IO++34/z/aY180dT71D4UUp…
  • s2: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDHWnamWY2O9CL78dICg2X4Qu9wM5R1nLnk+tcHZYbETPuTPwIW1jyTHtEeL3bC8pRET1nBuA1+GGc+Uk55BbdS6S…
  • smtpapi: k=rsa; t=s; p=MIGfMA0GCSqGSIb3DQEBAQUAA4GNADCBiQKBgQDPtW5iwpXVPiH5FzJ7Nrl8USzuY9zqqzjE0D1r04xDN6qwziDnmgcFNNfMewVKN2D1O+2J9N14hRprzByFwfQW76…
selectors probed

Certificate (current)

Amazon RSA 2048 M02
from 2025-08-15 to 2026-09-14
Expires in 117 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://sezzle.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing Permissions Policy
Header values
referrer-policy
strict-origin
x-frame-options
SAMEORIGIN
x-content-type-options
nosniff
content-security-policy
default-src * 'self' 'unsafe-inline' 'unsafe-eval' ; script-src * 'self' 'unsafe-inline' 'unsafe-eval' d3svog4tlx445w.cloudfront.net *.fullstory.com *.appsflyer.com *.googletagmanager.com *.google.com *.smooch.io *.getclicky.com *.getdrip.com *.pingdom.net *.pardot.com *.freshdesk.com *.freshchat.com data: *.chilipiper.com *.forchili.com *.kscope.io *.visualwebsiteoptimizer.com app.vwo.com; style-src * 'self' 'unsafe-inline' *.visualwebsiteoptimizer.com app.vwo.com d34uoa9py2cgca.cloudfront.net d3svog4tlx445w.cloudfront.net unpkg.com d36mpcpuzc4ztk.cloudfront.net; img-src * data: blob: *.visualwebsiteoptimizer.com app.vwo.com useruploads.vwo.io; font-src * data:; connect-src * 'self' *.fullstory.com *.appsflyer.com *.googletagmanager.com *.google.com *.smooch.io *.getclicky.com *.chilipiper.com *.forchili.com *.visualwebsiteoptimizer.com app.vwo.com; media-src * *.getdrip.com *.pingdom.net d36mpcpuzc4ztk.cloudfront.net *.freshdesk.com *.freshchat.com; frame-src * *.visualwebsiteoptimi
strict-transport-security
max-age=15724800; includeSubDomains

Links to (8)

Linked from (2)